Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document.
Note: Even the most advanced machine translation cannot match the quality of professional translators.
Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).

hwAclIpv6AdvancedRuleTable

hwAclIpv6AdvancedRuleTable

This table is used to create the rule of an advanced ACL rule group.
This table uses the index of hwAclIpv6NumGroupTable and the rule ID
as the indexes.

The indexes of this table are hwAclIpv6AdvancedAclNum and hwAclIpv6AdvancedSubitem.

OID

Object Name

Syntax

Max Access

Description

Implemented Specifications

1.3.6.1.4.1.2011.5.1.1.13.1.1

hwAclIpv6AdvancedAclNum

Integer32

Read-only

This object indicates the primary index, which corresponds
to the index in hwAclIpv6NumGroupTable. It indicates the number of
a rule group. The value ranges from 3000 to 3999.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.2

hwAclIpv6AdvancedSubitem

Integer32

Read-only

This object indicates the secondary index, representing
the ID of a rule in a rule group. The value ranges from 0 to 2047.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.3

hwAclIpv6AdvancedAct

INTEGER

Read-create

This object indicates the action corresponding to a rule:

permit

deny

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.4

hwAclIpv6AdvancedProtocol

Integer32

Read-create

This object identifies the protocol number. The value ranges
from 1 to 255.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.5

hwAclIpv6AdvancedSrcIp

IpAddress

Read-create

This object indicates the source IP address.

Set this
object in hexadecimal format.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.6

hwAclIpv6AdvancedSrcPrefix

IpAddress

Read-create

This object indicates the length of the source address prefix.
The value ranges from 1 to 128.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.7

hwAclIpv6AdvancedSrcOp

INTEGER

Read-create

The value of this object identifies the operator
of the source port range.

The value can be:

lt(1): indicates "less than".

eq(2): indicates "equal".

gt(3): indicates "larger than".

range(5): indicates "between".

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.8

hwAclIpv6AdvancedSrcPort1

Integer32

Read-create

This object identifies the lower limit on the source port number.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.9

hwAclIpv6AdvancedSrcPort2

Integer32

Read-create

This object identifies the upper limit on the source port number.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.10

hwAclIpv6AdvancedDestIp

IpAddress

Read-create

This object indicates the destination IP address.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.11

hwAclIpv6AdvancedDestPrefix

IpAddress

Read-create

This object indicates the length of the destination address
prefix. The value ranges from 1 to 128.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.12

hwAclIpv6AdvancedDestOp

INTEGER

Read-create

The value of this object identifies the operator of the destination
port range.

The value can be:

lt(1): indicates "less than".

eq(2): indicates "equal".

gt(3): indicates "larger than".

range(5): indicates "between".

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.13

hwAclIpv6AdvancedDestPort1

Counter64

Read-create

This object identifies the lower limit on the destination port
number.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.14

hwAclIpv6AdvancedDestPort2

Integer32

Read-create

This object identifies the upper limit on the destination port
number.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.15

hwAclIpv6AdvancedPrecedence

Integer32

Read-create

This object identifies the precedence field, that is, three
higher-order bits of the ToS field in an IP packet. The value ranges
from 0 to 7.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.16

hwAclIpv6AdvancedTos

Integer32

Read-create

This object identifies the Precedence field, that is, four
bits after the ToS field in an IP packet. The value ranges from 0
to 15.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.17

hwAclIpv6AdvancedDscp

Integer32

Read-create

This object identifies the DSCP value, that is, seven higher-order
bits of the ToS field in an IP header. The value ranges from 0 to
63.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.19

hwAclIpv6AdvancedTimeRangeIndex

Integer32

Read-create

This object indicates the time range index referenced by
a rule. The value ranges from 1 to 256.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.20

hwAclIpv6AdvancedIcmpType

Integer32

Read-create

This object identifies the ICMP type. The value ranges from
0 to 255.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.21

hwAclIpv6AdvancedIcmpCode

Integer32

Read-create

This object identifies the ICMP code. The value ranges from
0 to 255.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.22

hwAclIpv6AdvancedFragments

TruthValue

Read-create

This object indicates whether the packets are non-initial
fragments:

true

false

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.23

hwAclIpv6AdvancedLog

TruthValue

Read-create

This object indicates whether a log is generated for a matching
packet:

true

false

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.24

hwAclIpv6AdvancedEnable

TruthValue

Read-only

This object indicates whether the rule takes effect. The
field is read only.

true

false

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.27

hwAclIpv6AdvancedRowStatus

RowStatus

Read-create

This object indicates the row status. The value can be CreateAndGo
or destroy.

This object is implemented as defined in the corresponding
MIB file.

1.3.6.1.4.1.2011.5.1.1.13.1.28

hwAclIpv6AdvancedDescription

OCTET STRING

Read-create

This object indicates the description of an advanced ACL
rule. The value ranges from 1 to 127.

This object is implemented as defined in the corresponding
MIB file.

Creation Restriction

Before creating a rule, ensure that the value of the primary
index exists in hwAclIpv6NumGroupTable.

When you create a rule, the hwAclIpv6AdvancedAct and hwAclIpv6AdvancedProtocol
fields are mandatory.

You need to specify the values of hwAclIpv6AdvancedSrcIp and
hwAclIpv6AdvancedSrcWild fields.

You need to specify the values of hwAclIpv6AdvancedSrcOp and
(hwAclIpv6AdvancedSrcPort1 | hwAclIpv6AdvancedSrcPort2).

You need to specify the values of hwAclIpv6AdvancedDestIp and
hwAclIpv6AdvancedDestWild.

You need to specify the values of hwAclIpv6AdvancedDestOp and
(hwAclIpv6AdvancedDestPort1| hwAclIpv6AdvancedDestPort2).

hwAclIpv6AdvancedIcmpCode and hwAclIpv6AdvancedIcmpType must
be specified simultaneously, and hwAclIpv6AdvancedIcmpType can be
specified independently.

You need to apply the time range to the created rule in the
MIB.

hwAclIpv6AdvancedDescription must be separately set, and does
not support multiple variable bindings.

Modification Restriction

The entries in
this table cannot be modified.

Deletion Restriction

The entries in this
table can be deleted.

Access Restriction

The value of this table
exists only when the value of hwAclIpv6NumGroupTable exists.